CVE-2011-5003: Avid Media Composer

High severity, CVSS 10.0. EPSS: 62.4% chance of exploitation in the next 30 days.

Stack-based buffer overflow in the Phonetic Indexer (AvidPhoneticIndexer.exe) in Avid Media Composer 5.5.3 and earlier allows remote attackers to execute arbitrary code via a long request to TCP port 4659.

Affected products

  • Avid Media Composer: up to and including 5.5.3

Published 2011-12-25. Last modified 2026-06-16.